Extension WordPress

Vulnérabilités Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

Cette page rassemble les failles publiées pour Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode, leurs plages de versions affectées et les correctifs signalés dans la base locale.

4Vulnérabilités
0Critiques
4Avec correctif
6,1CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

4 fiches

CVE-2026-25407 Moyenne · 4,3
Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode <= 4.6.4 – Missing Authorization

The Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 4.6.4.…

Versions affectées

*-4.6.4

Correctif

4.6.5

Publication

29/01/2026

CVE-2025-53197 Moyenne · 4,3
Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

Cookiebot <= 4.5.8 – Cross-Site Request Forgery

The Usercentrics Cookiebot – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.5.8. This is due to missing or incorrect nonce…

Versions affectées

*-4.5.8

Correctif

4.5.9

Publication

27/06/2025

CVE-2025-1666 Moyenne · 4,3
Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics <= 4.4.1 – Missing Authorization to Authenticated (Subscriber+) Survey Submission

The Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the send_uninstall_survey() function in all versions up to, and including,…

Versions affectées

*-4.4.1

Correctif

4.4.2

Publication

05/03/2025

Vulnérabilité Moyenne · 6,1
Cookiebot by Usercentrics – Automatic Cookie Banner for GDPR/CCPA & Google Consent Mode

Cookiebot | GDPR/CCPA Compliant Cookie Consent and Control <= 3.6.0 – Reflected Cross-Site Scripting

The Cookiebot | GDPR/CCPA Compliant Cookie Consent and Control plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the tab parameter in versions up to, and including 3.6.0 This makes it possible for unauthenticated attackers to inject…

Versions affectées

[*, 3.6.1)

Correctif

3.6.1

Publication

08/09/2020

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités